Aggregator
Kind of lost
1 year 5 months ago
盘点万亿市值的Palantir在2024年拿下的至少87亿的美军合同都是啥
1 year 5 months ago
仅2024年一年,该公司与美国军方的合同额就高达12亿美元(约合人民币87.8亿元)。
盘点万亿市值的Palantir在2024年拿下的至少87亿的美军合同都是啥
1 year 5 months ago
主站 分类 漏洞 工具 极客
Where to get the Pegasus Software?
1 year 5 months ago
CVE-2024-53835 | Google Android Biometric improper authentication
1 year 5 months ago
A vulnerability has been found in Google Android and classified as critical. This vulnerability affects unknown code of the component Biometric. The manipulation leads to improper authentication.
This vulnerability was named CVE-2024-53835. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53836 | Google Android wb_regon_coordinator.c wbrc_bt_dev_write out-of-bounds write
1 year 5 months ago
A vulnerability was found in Google Android. It has been rated as critical. This issue affects the function wbrc_bt_dev_write of the file wb_regon_coordinator.c. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2024-53836. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53837 | Google Android lwis_periodic_io.c prepare_response out-of-bounds write
1 year 5 months ago
A vulnerability classified as critical has been found in Google Android. Affected is the function prepare_response of the file lwis_periodic_io.c. The manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2024-53837. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53838 | Google Android VendorVideoAPI.cpp Exynos_parsing_user_data_registered_itu_t_t35 out-of-bounds write
1 year 5 months ago
A vulnerability classified as critical was found in Google Android. Affected by this vulnerability is the function Exynos_parsing_user_data_registered_itu_t_t35 of the file VendorVideoAPI.cpp. The manipulation leads to out-of-bounds write.
This vulnerability is known as CVE-2024-53838. The attack needs to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53839 | Google Android protocolnetadapter.cpp GetCellInfoList out-of-bounds
1 year 5 months ago
A vulnerability was found in Google Android and classified as problematic. This issue affects the function GetCellInfoList of the file protocolnetadapter.cpp. The manipulation leads to out-of-bounds read.
The identification of this vulnerability is CVE-2024-53839. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53840 | Google Android Biometric improper authentication
1 year 5 months ago
A vulnerability was found in Google Android. It has been classified as critical. Affected is an unknown function of the component Biometric. The manipulation leads to improper authentication.
This vulnerability is traded as CVE-2024-53840. Local access is required to approach this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53842 | Google Android cc_MmConManagement.c cc_SendCcImsInfoIndMsg out-of-bounds write
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Google Android. This issue affects the function cc_SendCcImsInfoIndMsg of the file cc_MmConManagement.c. The manipulation leads to out-of-bounds write.
The identification of this vulnerability is CVE-2024-53842. The attack may be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-53841 | Google Android startListeningForDeviceStateChanges permission
1 year 5 months ago
A vulnerability, which was classified as critical, has been found in Google Android. Affected by this issue is the function startListeningForDeviceStateChanges. The manipulation leads to permission issues.
This vulnerability is handled as CVE-2024-53841. An attack has to be approached locally. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
I cant get binwalk or scalpel to extract data from a .db file.
1 year 5 months ago
山石安研院2024年度代表性原创0day漏洞
1 year 5 months ago
山石网科安全技术研究院2024年度代表性原创通用漏洞国内版
山石安研院2024年度代表性原创0day漏洞
1 year 5 months ago
在过去的一年中安全技术研究院三大实验室挖掘了无数的各类原创0day漏洞,帮助国内外各大厂商修复了众多的高危及严重漏洞,由于CNVD的漏洞最高级别只是高危,所以有些超危、严重的漏洞都算为高危了。这里仅以
Microsoft, Ping, Okta Dominate Access Management Gartner MQ
1 year 5 months ago
Access Management Leaders Remain Unchanged as Customer Identity Cases Proliferate
Advances in customer identity around better user experience, strong authentication, and centralized identity processes have driven rapid growth in the access management market. The space by grew 17.6% to $5.85 billion in 2023 as organizations increasing look to replace homegrown CIAM solutions.
Advances in customer identity around better user experience, strong authentication, and centralized identity processes have driven rapid growth in the access management market. The space by grew 17.6% to $5.85 billion in 2023 as organizations increasing look to replace homegrown CIAM solutions.
US CISA Issues Final Cyber Rules for Restricted Bulk Data
1 year 5 months ago
Cyber Defense Agency Aims to Bolster Protections Against Chinese Intrusion
The Cybersecurity and Infrastructure Security Agency is issuing final rules to safeguard U.S. sensitive data from potential Chinese intrusions, requiring Americans involved in restricted transactions with Chinese entities to adopt stringent cybersecurity measures.
The Cybersecurity and Infrastructure Security Agency is issuing final rules to safeguard U.S. sensitive data from potential Chinese intrusions, requiring Americans involved in restricted transactions with Chinese entities to adopt stringent cybersecurity measures.
Japanese Businesses Hit By a Surge In DDoS Attacks
1 year 5 months ago
DDoS Attacks Primarily Target Logistics, Government and Financial Entities
A spate of distributed denial-of-service attacks during the end-of-year holiday season disrupted operations at multiple Japanese organizations, including the country's largest airline, wireless carrier and prominent banks. The effect of the attacks has been temporary.
A spate of distributed denial-of-service attacks during the end-of-year holiday season disrupted operations at multiple Japanese organizations, including the country's largest airline, wireless carrier and prominent banks. The effect of the attacks has been temporary.
How to approach getting into a Windows account without a pin, without erasing all the credentials?
1 year 5 months ago